EU AI Act compliance MCP server with bounded system assessment, structured classification, article grounding, GPAI, Art. 6(3), Annex III/IV, deadlines, obligations, penalties, and FAQ. By Lexbeam Software. Runs locally from the @lexbeam-software/eu-ai-act-mcp npm package.
Source-grounded EU AI Act governance for European legal, compliance, privacy, security, and AI governance teams: classification, DPIA and FRIA workflows, vendor review, policy review, and evidence packs.
Classify AI systems and GPAI models under the current EU AI Act. Use for Article 5 prohibited-practice screening, Article 6 and Annex I/III high-risk analysis, Article 6(3) exceptions, Article 50 transparency duties, GPAI duties, role allocation, deadlines, or an evidence-backed classification memo.
Assess and build an EU AI Act compliance programme. Use for inventories, role maps, deadline readiness, Article 4 AI literacy, high-risk provider or deployer controls, GPAI governance, policy roadmaps, remediation plans, or executive compliance status.
Assess an AI vendor, model provider, or supplier relationship. Use for EU AI Act role and evidence checks, GDPR processor terms, security and resilience review, model-change controls, incident routes, audit rights, contractual redlines, or a go/no-go procurement recommendation.
Run or review a GDPR data protection impact assessment for an AI system. Use for Article 35 trigger screening, necessity and proportionality, profiling and automated decisions, bias and explainability risks, mitigations, DPO consultation, Article 36 prior consultation, or DPIA and EU AI Act FRIA coordination.
Create, review, or organise EU AI Act governance evidence. Use for Article 11 and Annex IV technical documentation, logs, quality management, conformity records, declarations, registration, deployer records, post-market monitoring, incident files, evidence indexes, or review packs.
Build or review an AI risk-management system, risk register, controls, monitoring plan, incident taxonomy, or remediation workflow. Use for EU AI Act Article 9 and Article 72 alignment, enterprise-risk integration, model and system monitoring, or serious-incident escalation.